User guide
Chapter 2: Environment Setup (SSO Administrators)
2-90
Figure 2-10 Interstage Single Sign-on Using IPsec
1. The IPsec encryption communication is set between the business server and repository server so
that communication from the business server is encrypted to prevent electrical interception or
alteration.
2. The IPsec encryption communication is set between the authentication server and repository server
so that communication from the authentication server is encrypted to prevent electrical interception
or alteration.
3. If SSO repository is set up in a repository server, data that the repository server fetches from the
SSO repository does not flow to the network. This prevents electronic interception or alteration.
4. SSL communication is set between the replicating repository servers to prevent electronic
interception or alteration.
5. SSL communication is set in authentication servers to prevent electronic interception or alteration
by encrypting communication from clients.
Refer to the operation manual of the related operating system for an explanation of the IPsec setting
method.